Apple pay Q
 

[Closed] Apple pay Q

19 Posts
15 Users
0 Reactions
90 Views
Posts: 13594
Free Member
Topic starter
 

So, yesterday I tried to use my iPhone for Apple pay at a cafe; but after 3 hours riding in the rain my fingers had swelled up and the fingerprint thing wouldn't work (as to be expected), so just as I was about to get out a CC, my phone just said 'use your PIN' instead....

Whilst convenient for me, it seems a bit of a security loop hole as I didn't think you could over ride payments with the PIN and it had to be finger print only?

 
Posted : 22/10/2020 1:26 pm
Posts: 13388
Full Member
 

Nope - I'm paying with PIN on Apple Pay a lot recently as Face ID won't recognize me with a mask on.

I really need to set-up a with-mask profile! 🙂

 
Posted : 22/10/2020 1:32 pm
Posts: 4915
Full Member
 

I use apple pay on my apple watch by double clicking.
I used garmin pay with a 4 figure pin.

I guess chip and pin only used a 4 figure pin too.

PS I swapped phones to one that uses face recognition to unlock just as we started wearing masks everywhere 🤦‍♂️

 
Posted : 22/10/2020 1:32 pm
Posts: 0
Free Member
 

Nope, you can do it via PIN too, which of course is a step up in security from a contactless card.

 
Posted : 22/10/2020 1:32 pm
Posts: 12847
Free Member
 

Always been like that... fingerprint isn’t integral to the security of ApplePay, you just need to unlock your phone! Still better than chip&pin or contactless 😂

 
Posted : 22/10/2020 1:33 pm
Posts: 7150
Full Member
 

2 Factor authentication just needs to be two separate things -
a thing you have (card) + a thing you know (pin)
or
a thing you have (phone) + inherent characteristic (fingerprint)

 
Posted : 22/10/2020 1:46 pm
Posts: 13594
Free Member
Topic starter
 

Learn something new everyday!

 
Posted : 22/10/2020 2:00 pm
Posts: 3046
Free Member
 

Nope you're wrong, same as if you've got a mask on yer face you can still get access with your PIN!

 
Posted : 22/10/2020 3:57 pm
Posts: 6851
Free Member
 

You need to think of it that Apple treats your PIN as the higher level of security, with Face/TouchID being perhaps less secure (in reality, not really) but more convenient. E.g. occasionally it'll force you to use your PIN rather than Face/Touch ID (like after a phone restart).

So it makes sense that it's considered on a par for payments.

It's also why it's laughable that some people use '111111' or similar for their phone security. Remember with full access to the phone you can easily pull all your personal data, website passwords, some stored card details etc.

TLDR: Change your PIN to something hard to guess.

 
Posted : 22/10/2020 4:04 pm
Posts: 13388
Full Member
 

So what's the biggest payment you've done on Apple Pay? Mine so far is £145.00 for a meal. Kinda feels wrong waving a phone at a machine to spend that amount! 🙂

 
Posted : 22/10/2020 4:08 pm
Posts: 1212
Free Member
 

Nothing to worry about in UK. Risk is with Apple / Card Networks / Banks. Same for contactless.

Unless you wrote your pin on bk of phone and they have evidence of you doing so...

 
Posted : 22/10/2020 4:39 pm
Posts: 2234
Free Member
 

So what’s the biggest payment you’ve done on Apple Pay? Mine so far is £145.00 for a meal. Kinda feels wrong waving a phone at a machine to spend that amount

I try and use Apple Pay for everything if I can so I've made a few big payments with it. I think the biggest was paying a significant deposit for my mum's new car as a present to her (I was too cheap to buy the whole car for her) that was a few £1000. The salesman didn't believe the payment went through and had to go check with his boss. He came back and apologised as it looked like he had no trust in me, I thought the situation was funny so laughed it off.

But yes it does feel a bit wrong pay for expensive things with just a tap of the phone!

 
Posted : 22/10/2020 5:24 pm
 Drac
Posts: 50284
 

6 digits is a lot securer then 4 digits or tapping a plastic card onto the device.

 
Posted : 22/10/2020 5:27 pm
Posts: 12847
Free Member
 

I try and use Apple Pay for everything if I can so I’ve made a few big payments with it.
Used it for a hundred quids or so worth of shopping when I forgot my wallet but I don’t think my rewards credit card pays out for AP over £30 so usually spend a few extra seconds getting my card out of my wallet for those!

 
Posted : 22/10/2020 5:36 pm
Posts: 0
Free Member
 

Standard out of the box limit for a merchant accepting Apple Pay payments is £250k.

It needs to be set at a lower limit by the merchant if they don't want random people walking in off the street paying for their new Bentley using their iPhone.

Most people don't realise its relatively unlimited - including many chains, which results in arguments with till people or servers who insist that you can't pay by contactless (as that's set lower) - and you get to do the smug look as you zap your phone and walk away.

 
Posted : 22/10/2020 5:44 pm
Posts: 0
Free Member
 

6 digits is a lot securer then 4 digits or tapping a plastic card onto the device.

Only if you're trying to hack it and know you're going for 4 or 6 numbers....but if you don't know wether it's 4 or 6 numbers then the number of possibilities and permutations are many magnitudes greater. The very fact you can choose to have a PIN that is either 4, 5 or 6 digits makes it so much more difficult to crack.

edit - you can still choose a 4 digit PIN on an Apple phone can't you?

 
Posted : 22/10/2020 5:44 pm
Posts: 13594
Free Member
Topic starter
 

Only if you’re trying to hack it and know you’re going for 4 or 6 numbers…

It's pretty obvious if it's 4 or 6 as you get 4 or 6 empty boxes appear on the lock screen...

 
Posted : 22/10/2020 6:04 pm
Posts: 816
Full Member
 

Only if you’re trying to hack it and know you’re going for 4 or 6 numbers….but if you don’t know wether it’s 4 or 6 numbers then the number of possibilities and permutations are many magnitudes greater.

I think it's...

4 digits = 10,000 combinations
5 digits = 100,000 combinations
6 digits = 1,000,000 combinations
4, 5 or 6 digits = 1,110,000 combinations

...so only ~10% not orders of magnitude more for 4, 5 or 6 vs 6 digits alone.

 
Posted : 22/10/2020 6:12 pm
 Drac
Posts: 50284
 

Only if you’re trying to hack it and know you’re going for 4 or 6 numbers….but if you don’t know wether it’s 4 or 6 numbers then the number of possibilities and permutations are many magnitudes greater.

Errrrr!

You’d be trying to guess the pin not hack it, you can tell if 4 or 6 by looking. As above 100x the amount of possibilities.

 
Posted : 22/10/2020 8:19 pm
Posts: 23244
Free Member
 

And it locks you out for increasing amounts of time if you repeatedly put the wrong pin in.

 
Posted : 22/10/2020 9:16 pm